CVE
- Id
- 69863
- CVE No.
- CVE-2014-2568
- Status
- Candidate
- Description
- Use-after-free vulnerability in the nfqnl_zcopy function in net/netfilter/nfnetlink_queue_core.c in the Linux kernel through 3.13.6 allows attackers to obtain sensitive information from kernel memory by leveraging the absence of a certain orphaning operation. NOTE: the affected code was moved to the skb_zerocopy function in net/core/skbuff.c before the vulnerability was announced.
- Phase
- Assigned (20140320)
- Votes
- None (candidate not yet proposed)
- Comments